CVE-2025-26336: Dell Chassis Management Controller For Poweredge FX2 Firmware
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Dell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management Controller Firmware for Dell PowerEdge VRTX version(s) prior to 3.41.200.202209300499, contain(s) a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
Affected products
- Dell Chassis Management Controller For Poweredge FX2 Firmware: before 2.40.200.202101130302 (fixed in 2.40.200.202101130302)
- Dell Chassis Management Controller For Poweredge Vrtx Firmware: before 3.41.200.202209300499 (fixed in 3.41.200.202209300499)
Published 2025-03-21. Last modified 2026-06-17.